Thank you for your interest in our company. We take your privacy very seriously.
In essence, you can use our website without submitting any personal data whatsoever. However, if any person concerned wishes to use our company's services via our website, personal data may be required. If the processing of personal data is required and there is no legal requirement for such processing, we will always seek the consent of the person whose data will be collected.
As the controller, we have implemented numerous technical and organizational measures to ensure the most thorough protection possible of any personal data processed through our website. However, data transmissions over the internet can, in general, contain security holes. Thus, 100% protection cannot be guaranteed. For this reason, any party concerned may, of course, opt for the alternative of transferring personal data by telephone.
'Personal data' refers to any information relating to an identified or identifiable natural person ('the data subject'); a natural person is regarded as identifiable who can be identified directly or indirectly - in particular by association with an identifier such as a name, an identification number, location data, an online identifier or one or more special features, including the expression of the physical, physiological, genetic, mental, economic, cultural, or social identity of this natural person.
'Data subject' refers to any identified or identifiable natural person whose personal data is processed by the controller.
'Processing' refers to any process, performed with or without the aid of automated procedures or any such series of processes, which relates to personal data such as collecting, recording, organizing, storing, adapting or modifying, reading, querying, using disclosure by submission, dissemination or any other form of preparation, matching or linking, restriction, erasure or obliteration of data.
'Restriction of processing' means the tagging of personal data stored in order to limit its future processing.
'Profiling' means any kind of automated processing of personal data which involves the use of such personal data to evaluate certain aspects relating to a natural person, in particular to analyze or predict aspects relating to job performance, economic situation, health, personal preferences, interests, reliability, behavior, whereabouts or location of this natural person.
'Responsible Party' refers to the natural or legal person, public authority, establishment or other facility that alone or jointly with others decides on the purposes and means of processing personal data; where the purposes and means of such processing are determined by Union law or the law of the Member States. The responsible party, or the specific criteria of this designation, are provided for under Union or national law.
'Recipient' refers to a natural or legal person, public authority, agency or other entity to whom personal data are disclosed, whether or not it is a third party. However, authorities which may receive personal data under Union or national law in connection with a particular investigation are not considered to be recipients; the processing of such data by the said authorities shall be in accordance with the applicable data protection rules to facilitate the purposes of a particular process.
'Third party' refers to a natural or legal person, public authority, facility or organization other than the data subject, the controller, the processor and the persons authorized under the direct responsibility of the controller or processor to process personal data.
'Consent refers to the assent, in a particular case, of the data subject, who, in an informed and unambiguous manner, in the form of a statement or other unambiguous confirmatory act by which the data subject expresses his understanding of the processing of the personal data concerned, agrees to its collection.
Name and contact details of the controller
Responsible Party: Gunar Fenner, Novasu GmbH, Savignyplatz 6, 10623 Berlin, Tel: 0049 (0)30 398202080, Fax: 0049 (0)30 3129067, E-Mail: [email protected]
Our website is encrypted for security reasons (SSL or TLS encryption). An encrypted connection can be recognized by the lock symbol in the browser and by the string "https://" in the browser.
Collection and storage of personal data and the nature and purpose of its use
When visiting the website
You can basically use our website without revealing your identity. When you visit our website, the browser used on your device automatically sends information to the server of our website. This information is temporarily stored in a so-called 'log file'. The following information will be collected without any action on your part and stored until it is automatically deleted:
IP address of the requesting computer
Date and time of access
Name and URL of the retrieved file
Website from which access is made (referrer URL)
Browser used and, if applicable, the operating system of your computer as well as the name of your access provider
The above-mentioned data is processed by us for the following purposes:
To ensure a trouble-free connection to our website
To ensure comfortable use of our website
Evaluation of system security and stability
For further additional administrative purposes
The legal basis for data processing is Art. 6 para. 1 p. 1 lit. f GDPR. Our legitimate interest lies solely in the data collection purposes listed above. Under no circumstances will we use the collected data for the purpose of drawing conclusions about you or your person.
Utilizing our contact form
For questions of any kind, we offer you the opportunity to contact us via a form provided on our website. It is necessary to provide a valid e-mail address so that we know who the request came from and the information we need in order to provide an response. Any further information can be provided on a voluntary basis. It is up to you to decide whether or not you want to enter this information in the contact form.
Any processing of data for the purpose of contacting us is in accordance with Art. 6 para. 1 p. 1 lit. a GDPR, and is based on your voluntarily-granted consent.
The personal data collected by us for the use of the contact form will be automatically deleted after completion of the your request.
When ordering through our website
You can either place orders as a guest through our website without registering, or register as a customer in our shop in order to facilitate future orders. Registration offers the advantage, should you wish to place orders in the future, of being able to log directly into our shop with only your e-mail address and your password, without having to enter your contact information again.
Your personal data will be entered into an input screen and transmitted to us for storage. If you place an order via our website, we will collect the following data, both in the case of a guest order as well as in the case of a registration in the shop:
Salutation, first name, surname
Valid email address
Telephone number (landline and/or mobile)
The collection of this data serves the following purposes:
to identify you as our customer
to process, fulfill and handle your order
for correspondence with you
for the settlement of possible liability claims, as well as to settle any claims asserted against your person
to manage the technical administration of our website
to manage our customer data
As part of the ordering process, we will obtain your consent to process this information. The data processing is based on your order and/or registration and is, in accordance with Art. 6 para. 1 p. 1 lit. b GDPR, for the stated purposes for appropriate processing of your order and for the mutual fulfillment of obligations under the purchase agreement.
The personal data collected by us for the processing of your order will be stored until the expiration of the statutory retention obligation and then deleted, unless we, under Article 6 para. 1 sentence 1 lit. c GDPR, are obliged to store data for a longer period of time due to tax and any commercial requirements for storage and documentation (HGB, StGB or AO), or if you have consented to extended storage of your personal data in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR.
You can subscribe to our e-mail newsletter for information on our current offers. The only mandatory information required is the specification of your e-mail address. All other information is voluntary and is used by us to provide, for example, a personal salutation. We use the so-called double opt-in procedure for sending the newsletter, meaning that you will only receive e-mails from us if you have explicitly confirmed that you wish to receive the newsletter. You will receive a confirmation email from us upon your registration. This e-mail contains a confirmation link, which you must click on to receive our e-mail newsletter in the future. By clicking on the confirmation link, you give us your consent to our use of your personal data in accordance with Art. 6 para. 1 lit. a GDPR
When registering for the newsletter, we save your IP address entered by the Internet service provider as well as the date and time of registration. We do this in order to review any potential misuse of your e-mail address at a later date. The data collected by us when registering for the newsletter will only be used for promotional purposes via our newsletter.
Of course, you can unsubscribe from the newsletter at any time with effect for the future via the provided link in the newsletter, or by informing the person responsible for data processing mentioned above. Further information on how to opt out of our newsletter can be found in the newsletter mail. If you cancel, then we delete your e-mail address from our newsletter distributor, insofar as you have not expressly consented to further use of your data or if we have reserved the right to further data usage, which is permitted by law and about which you have been informed in this statement.
Disclosure of data
A transfer of your personal data (name, delivery address) from us to third parties will be made exclusively to the service partners involved in the execution of the contract, specifically the logistics company commissioned with the delivery and the credit institute responsible for payment matters, insofar as this is necessary for the delivery of the goods or for the processing of payments. The legal basis for the transfer of this data is Art. 6 para. 1 sentence 1 lit. b GDPR.
Passing on the e-mail address and/or telephone number to shipping service providers
- e.g. DHL, DPD, GLS, Hermes, UPS If you have given your express consent to the disclosure of your e-mail address and/or telephone number to the shipping service provider as part of the ordering process, we will provide this personal data to the respective shipping service provider on the basis of Art. 6 para. 1 lit. a GDPR, so that they can coordinate all the details of the delivery with you (e.g. delivery date, place).
You can revoke your one-time granted consent at any time with effect for the future from the above-mentioned data protection officer or the respective shipping service provider.
We work with the following service providers for order processing:
When selecting the payment methods "Purchase invoice" via Secupay or "direct debit (direct debit)" via Secupay, you will be asked, as part of the ordering process, for your personal data (first and last name, street, house number, postcode, city, date of birth, e-mail address, telephone number , IBAN, BIC). In order to safeguard our legitimate interest in determining the solvency of our customers, we use this data on the basis of Art. 6 para. 1 lit. f GDPR for the purpose of a credit check by Secupay AG. On the basis of the personal data provided by you, Secupay AG then checks whether the payment option selected by you can be granted with regard to payment and/or default risks. In addition to Secupay's internal criteria, pursuant to Art. 6 para. 1 lit. f GDPR, this also includes identity and credit information from the following information sources:
infoscore Consumer Data GmbH (arvato), Rheinstraße 99, D-76532 Baden-Baden, Tel.: +49 (0)7221-5040-1000, Fax: -1001
Creditreform Boniversum GmbH, Hellersbergstraße 11, D-41460 Neuss, Tel.: +49 (0)2131-109-501, Fax: -557
EOS Payment Solutions GmbH, Steindamm 80, 200 Hamburg
The credit information can contain probability values (so-called score values). Insofar as score values are included in the results of the credit rating, they are based on a scientifically recognized mathematical-statistical procedure. The calculation of score values includes, but is not limited to, address data. You may object to this processing of your data at any time by sending a message to the controller or to Secupay. Please note, however, that Secupay AG may continue to be entitled to process your personal data if this is necessary for the contractual payment process.
SOFORT Überweisung (automatic bank transfer)
For payment via PayPal, credit card via PayPal, direct debit via PayPal or "purchase on account" via PayPal, we will transfer your payment data to Paypal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter referred to as "PayPal"). PayPal reserves the right to carry out credit checks via PayPal, direct debit via PayPal or "purchase on account" or "installment payment" via PayPal. For this, your payment details based on Art. 6 para. 1 lit. f GDPR may be transmitted by PayPal to credit bureaus.
You can object to the processing of your data at any time by sending a message to PayPal. However, PayPal may still be entitled to process your personal data if this is necessary for the contractual payment process.
A transfer of your personal data to third parties for purposes other than those mentioned above does not take place.
We will only share your personal information with third parties if:
Sie Ihre nach Art. 6 Abs. 1 S. 1 lit. a GDPR ausdrückliche Einwilligung dazu erteilt haben,
You, according to Art. 6 para. 1 p. 1 lit. a GDPR, have given express consent to this disclosure
Pursuant to Art. 6 para. 1 sentence 1 lit. f GDPR, when such information is required to assert, exercise, or defend legal claims and there is no reason to assume that you have a legitimate interest in not disclosing your data
In the event that disclosure pursuant to Art. 6 para. 1 sentence 1 lit. c GDPR is a legal obligation, when in addition
In each cookie information is stored which is a result of a connection with the specific terminal used. However, this does not mean that we are immediately aware of your identity.
In addition, to improve usability, we also use temporary cookies that are stored on your device for a specified period of time. If you visit our site again to take advantage of our services, it automatically recognizes that you have already visited our site as well as any inputs and settings you have made, so that there is no need to re-enter them.
The data processed by cookies is for the purposes mentioned in order to safeguard our legitimate interests as well as third parties according to the required terms specificied in Art. 6 para. 1 sentence 1 lit. f GDPR.
Most browsers accept cookies automatically. However, you can configure your browser so that no cookies are stored on your computer or so that a warning appears before a new cookie is created. However, disabling cookies completely may mean that you can not use all the features of our website.
Links to third-party websites
The links published on our website have been thoroughly researched and compiled with the utmost care. However, we have no influence on the current and future design and content of the linked pages. We are not responsible for the content of the linked pages and we do not endorse the content of these pages. For illegal, incorrect or incomplete content as well as for damages resulting from the use or non-use of the information, the provider of the web site to which reference was made is solely liable. The liability of those who only refer to a publication by a link is excluded. We are only responsible for third-party references when we have concrete knowledge about them, specifically about any illegal or criminal content, and it is technically possible and reasonable for us to prevent their use.
Use of social media
We use the Youtube Embedding feature on our website to view and play Youtube videos from "Youtube" (owned by Google LLC., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA).
On our website are plugins from the video portal Vimeo of Vimeo, LLC, 555 West 18th Street, New York, New York 10011, USA. If you visit a page of our website that contains such a plugin, then your browser establishes a direct connection to the servers of Vimeo. The plugin content is then transmitted to your browser directly from Vimeo and integrated into the site. Through this integration, Vimeo receives the information that your browser has called up the respective page of our website, even if you do not have a Vimeo account or are not logged into Vimeo at all. This information is transmitted directly from your browser to a Vimeo server in the USA and stored there. When you log into Vimeo, Vimeo can directly link your visit to our website to your Vimeo account. If you use the plugin, then the information is also transmitted directly to a server of Vimeo and stored there. The data processing operations described are based on Art. 6 para. 1 lit. f GDPR. Log out of Vimeo before visiting our website, unless you want Vimeo to assign the data collected via our website directly to your Vimeo account.
Analysis and Tracking Tools
The tracking measures listed below and used by us are based on Art. 6 para. 1 sentence 1 lit. f GDPR. With the tracking measures to be used, we want to ensure a needs-based design as well as the continuous optimization of our website. On the other hand, we use the tracking measures to statistically record the use of our website and evaluate it for the purpose of optimizing the offers we make to our customers. These interests are to be regarded as justified within the definitions of the aforementioned provision.
The respective data processing purposes and data categories can be found in the corresponding tracking tools.
For the purpose of customizing and continually optimizing our pages, we use Google Analytics, a web analytics service provided by Google Inc, ( https://www.google.de/intl/de/about/) (1600 Amphitheater Parkway, Mountain View, CA 94043, USA, hereafter "Google"). In this context, pseudonymous user profiles are created and cookies (see paragraph 5) are used. The information generated by cookies concerning your use of this website such as:
operating system used,
referring URL (the previously visited page),
host name of the accessing computer (IP address), and
time of server request,
are transmitted to a Google server in the US and stored there. The information is used to evaluate the use of the website, to compile reports on website activity and to provide other services related to website activity and internet usage for the purposes of market research and tailor-made website design. This information may also be transferred to third parties when required by law or if third parties process this data in the order. Under no circumstances will your IP address be merged with any other data provided by Google. The IP addresses are made anonymous, so that any direct correlation with your IP address is not possible (IP masking).
You can prevent the installation of cookies by setting your browser software accordingly; however, we point out that in this case not all features of our website may be fully utilized.
You can also prevent the collection of data generated by cookies and related to your use of the website (including your IP address) and the processing of this data by Google, by downloading and installing a browser add-on (https://tools.google.com/dlpage/gaoptout?hl=de).
As an alternative to the browser add-on, especially for browsers on mobile devices, you can prevent data collection by Google Analytics by clicking on the link above. An opt-out cookie will be set which prevents the future collection of your data when you visit our website. The opt-out cookie is only valid in this browser and only for our website and is stored on your device. If you delete the cookies in this browser, you must set the opt-out cookie again.
For more information about privacy related to Google Analytics, please see the following link in the Google Analytics Help Center: https://support.google.com/analytics/answer/6004245?hl=de
Google Adwords Conversion Tracking
To statistically record the use of our website and to evaluate it for the purpose of optimizing our website, we also use Google conversion tracking. In doing so, Google Adwords will set a cookie (see paragraph 5) on your computer if you have reached our website via a Google ad.
These cookies lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of the Adwords customer's website and the cookie has not yet expired, Google and the customer can recognize that the user clicked on the ad and was redirected to this page.
Every Adwords customer receives a different cookie. Cookies can not be tracked via the websites of Adwords customers. The information gathered using the conversion cookie is used to generate conversion statistics for Adwords customers who have opted for conversion tracking. Adwords customers can see the total number of users who clicked on their ad and were redirected to a page using a conversion tracking tag. However, they do not receive information that personally identifies users.
DoubleClick by Google
Google AdWords Remarketing
Our website uses the features of Google AdWords Remarketing. We advertise our website in the Google search results, as well as on the websites of third parties. The provider is Google LLC., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (hereafter: Google). For this purpose, Google sets a cookie in the browser of your device, which automatically enables interest-based advertising by means of a pseudonymous cookie ID and based on the pages you visit. The legal basis for this processing is Art. 6 para. 1 lit. f GDPR and is relevant according to our legitimate interest in the optimal marketing of our website.
Additional data processing will only take place if you have agreed with Google that Google's Internet and App Browsing history will be linked to your Google Account and that information from your Google Account will be used to personalize ads you view on the WorldWideWeb. In this case, if you log into Google while visiting the site, Google will use your information with Google Analytics data to create and define audience lists for cross-device remarketing.
Your personal information will be temporarily linked to Google Analytics data for the purposes of Google in order to build target groups. You can permanently disable cookies by downloading and installing the browser plug-in available at the following link: https://www.google.com/settings/ads/onweb/
US-based Google LLC is certified by the US Privacy Shield, which ensures compliance with the level of data protection in the EU.
We use Google Maps (API) from Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA ("Google"). Google Maps is a web service for displaying interactive (land) maps to visually display geographic information. The use of this service will show you our location and facilitate your commute to our shop.
When you visit any of the subpages where the Google Maps map is incorporated, information about your use of our website (such as your IP address) is transmitted to Google's servers in the United States and stored there. This is done regardless of whether Google provides a user account that you are logged into, or even if there is no user account. When you're logged into Google, your data will be assigned directly to your account. If you do not wish to be associated with your profile on Google, you must log out before activating the button. Google stores your data (even for non-logged-in users) as usage profiles and evaluates them.
You have the right to object to the formation of these user profiles, which you must exercise in accordance with the policies of Google. US-based Google LLC is certified with the US Privacy Shield, which ensures compliance with the level of data protection in the EU.
Google Web Fonts
Our website uses uniform fonts called Web Fonts by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA ("Google"). When you open a page, your browser loads the required web fonts into the browser cache in order to properly display text and fonts.
For this, your browser needs to connect to Google's servers. As a result, Google learns that our website has been accessed via your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online services, which constitutes a legitimate interest on the basis that Art. 6 para. 1 lit. f GDPR represents. If your browser does not support web fonts, a default font will be used by your computer. US-based Google LLC is certified under the US Privacy Shield, which ensures compliance with the level of data protection in the EU. More information about Google Web Fonts can be found at https://www.google.com/policies/privacy/
Rights of Persons Concerned
You have the right:
in accordance with Art. 15 GDPR, to request information about your personal data processed by us. In particular, you have the right to information on the processing purposes, the categories of personal data, the categories of recipients to whom your data has been or will be disclosed, the planned data retention period, the right to rectification, deletion, limitation or cancellation of processing, the existence of the right to file complaints, the extraction or source of data not collected by our website, as well as the existence of automated decision-making including profiling and, where appropriate, meaningful information about their details;
pursuant to Art. 16 GDPR, to demand the immediate correction of incorrect or incomplete personal data stored by us;
in accordance with Art. 17 GDPR, to demand the deletion of your personal data stored by us, except where the processing is for the exercise of the right to freedom of expression and information, for the fulfillment of a legal obligation, for reasons of public interest or when it is necessary for the assertion, exercise or defense of legal claims;
in accordance with Art. 18 GDPR, to demand the restriction of the processing of your personal data when you dispute the accuracy of the data or when the processing of such is unlawful, when the data is no longer necessary for your order but you however object to its deletion in order to assert, exercise or defend legal claims; or you have objected to processing in accordance with Art. 21 GDPR;
pursuant to Art. 20 GDPR, to obtain the personal data provided to us in a structured, common and machine-readable format or to request the transfer to another person responsible;
pursuant to Art. 7 para. 3 GDPR to revoke your once-granted consent at any time. As a result, we are not allowed to continue the data processing based on this consent in the future and
according to Art. 77 GDPR you have the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or work, or our company headquarters.
Right of Withdrawal
When your personal data is processed based on legitimate interests in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR, you have the right to file an objection against the processing of your personal data in accordance with Art. 21 GDPR, provided that there are reasons for this arising from your particular situation or the objection is directed against online advertising. In the latter case, you have a general right of objection, which is implemented by us without specifying any particular situation.
If you would like to exercise your right of objection, an e-mail to the person responsible for data processing is all that is needed.
We use the popular SSL (Secure Socket Layer) method to protect customers visiting our website, in conjunction with the highest level of encryption supported by your browser. In general, this is a 256-bit encryption. If your browser does not support 256-bit encryption, we will use 128-bit v3 technology instead. Whether or not a single page of our website is encrypted is shown by the closed representation of the key or lock icon in the lower status bar of your browser.
We also take appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or total loss, destruction, or against unauthorized access by third parties. Our security measures are continuously being improved in line with technological developments.
Savignyplatz 6 10623 Berlin
Phone: 0049 (0)30 398202080
E-Mail: [email protected]